Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
boneyard
Valued Contributor

diagnose sys ha session-sync-dev output unexpected

In a FGCP cluster trying to get session sync traffic over the dedicated interface with the set session-sync-dev command. But the corresponding diagnose output seems to indicate it doesn't work.

 

fgt1 (root) # diagnose sys ha session-sync-dev
HA sessync ports: 1
dmz probe: HA probe, Standalone connected, peer_mac = 00:00:00:00:00:00
HB pkts: rx=0, tx=508298
SES pkts: rx=0, tx=0

 

Seems to indicate HB packets are send, but none received. Also the status remains probe for HA.

The cluster is connect with a direct cable, no switch in between or such.Tried with other interfaces also, wan1, internal4, ...

 

Anyone has this working and different command (diagnose sys ha session-sync-dev) output? What are your counters and status?

2 REPLIES 2
salemneaz
Staff
Staff

Hi,

 

You are saying the hatalk is not working, hatalk is the one responsible for the heartbeat. Please check the crashlog "di de crashlog read" to see if the demon is failing. You can restart the process by using the command "fnsysctl killall hatalk". Run the following debug on both the Firewall to see the process

diag debug hatalk -1

diag debug console timestamp en

diag debug enable

 

To stop the debug use the command given below;

 

diag debug disable

diag debug reset

 

Article Reference:

---------------------------------------

https://community.fortinet.com/t5/FortiClient/Technical-Tip-Collecting-information-for-HA-issues/ta-...

Salem
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors